XZ Utils Backdoor is a malware family tracked by ThreatCluster, appearing in 1 threat cluster built from 1 intelligence report mention.
XZ Utils Backdoor is a malware family tracked across 1 threat cluster and 1 intelligence report mention on ThreatCluster. First observed July 29, 2026; most recent activity July 29, 2026.
Amazon's threat intelligence team has linked a North Korean hacker group to multiple compromises of popular open source software libraries, including axios, debug, chalk, and typo-crypto. The group, tracked under…
XZ Utils Backdoor is a malware family tracked by ThreatCluster, appearing in 1 threat cluster built from 1 intelligence report mention.
The most recent intelligence report mentioning XZ Utils Backdoor on ThreatCluster is dated July 29, 2026.
Across ThreatCluster reporting, XZ Utils Backdoor most frequently co-occurs with Alluring Pisces, BlueNoroff, CageyChameleon, Sapphire Sleet, Stardust Chollima, among 12 tracked related entities.
The most significant recent cluster is “North Korean Hackers Target Open Source Software Libraries” (2 articles · Updated July 29, 2026). XZ Utils Backdoor appears across 1 threat cluster in total, listed above with sources.
XZ Utils Backdoor appears in 1 intelligence report mention across 1 deduplicated threat cluster, aggregated from 17,000+ monitored sources.